Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Security Engineer image - Rise Careers
Job details

Senior Security Engineer

KUBRA is excited to announce the hiring of a talented Senior Cloud Security Engineer to join our dynamic team! This pivotal role focuses on designing, optimizing, and maintaining a secure computing environment with a strong emphasis on application and cloud security. As a Senior Cloud Security Engineer, they will play a critical part in ensuring KUBRA's security standards are consistently met, implemented, and reviewed across both on-premises and online platforms. Their expertise will help shape a resilient security framework for KUBRA’s technology, driving innovation and trust in our cloud and application environments!


This is a HYBRID role located in Mississauga, Ontario.


What you get to do every day!
  • Identify and provide guidance on appropriate controls based on industry standards to drive cloud and customer security solutions framework based on business risk and cloud native threats
  • Develop and implement cloud security architectures focused on AWS 
  • Assist in developing an overall organizational data strategy that is in line with business processes and contractual requirements
  • Establish and enforce secure application development practices, including secure coding, threat modeling, SAST/DAST and vulnerability management.
  • Conduct security assessments of cloud infrastructure, applications, and CI/CD pipelines.
  • Provide security guidance and best practices to Product and Service Delivery teams.
  • Define and implement security policies, standards, and procedures for cloud and application security.
  • Work with engineering and operations teams to integrate security controls within cloud-native services.
  • Lead security reviews, architecture assessments, and risk analysis for new and existing applications.
  • Monitor security trends, vulnerabilities, and threats in cloud and application security domains.
  • Collaborate with compliance teams to ensure adherence to regulations such as PCI-DSS, SOC 1/2, ISO 27001 etc
  • Respond to security incidents and provide expertise in forensic analysis and remediation.
  • Design and implement network security controls, including firewall configuration and management.
  • Manage firewall solutions such as Akamai and cloud-native security services to protect applications and infrastructure.
  • Ensure robust network security by implementing intrusion detection/prevention systems (IDS/IPS), web application firewalls (WAFs), and DDoS mitigation strategies.
  • Design and implement database security controls, including data encryption, access control, and monitoring.
  • Conduct database vulnerability assessments and ensure compliance with security policies.
  • Work with database administrators to apply security best practices to relational and NoSQL databases.
  • Implement data masking, tokenization, and audit logging for sensitive data protection.
  • Develop and implement Infrastructure as Code (IaC) security best practices to ensure secure provisioning and configuration of cloud resources.
  • Ensure security is embedded in IaC templates using tools like Terraform and AWS Cloud Formation.
  • Perform security architecture design reviews and provide recommendations to improve the security posture of KUBRA’s application, database, and cloud platforms
  • Perform periodic testing, code analysis, and security assessments of KUBRA owned applications 
  • Govern Watch over cloud security systems for change and configuration control thereby suggesting changes to further improve the overall security posture.
  • Partner with DevSecOps, Application and Infrastructure teams to ensure any vulnerabilities or issues are resolved per security guidelines 
  • Stay up to date with current cyber security risk and analyze trends to proactively prevent problems.
  • Assist in developing an overall organizational data strategy that is in line with business processes and contractual requirements


What kind of person should you be?
  • Excellent verbal, written and interpersonal skills
  • Ability to detail and effectively discriminate relevant logs / security events
  • Ability to handle multiple tasks and projects concurrently
  • Excellent written and verbal communication skills
  • Ability to plan and manage complex security projects, and meet the deadlines
  • Excellent organization, time management and problem-solving skills
  • Ability to handle pressure under minimum or no direct supervision


What skills do you need?
  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or a related field.
  • 7+ years of experience in cybersecurity, with a focus on Security Architecture, cloud and application security.
  • Strong knowledge of cloud security frameworks (AWS Well-Architected Framework, CSA-CCM, CIS Controls).
  • Experience with securing cloud-native applications, microservices, and containerized environments (Kubernetes, Docker).
  • Expertise in secure software development practices, including OWASP Top 10 and SAST/DAST methodologies.
  • Familiarity with DevSecOps principles and tools such as Terraform, GitHub Actions, or AWS CodePipeline.
  • Hands-on experience with identity and access management (IAM), encryption, and key management.
  • Proficiency in scripting and automation using Python, Bash, or PowerShell.
  • Experience with firewall technologies, network security principles, and secure network architecture design.
  • Experience with database security, including best practices for relational and NoSQL databases.
  • Experience with Infrastructure as Code (IaC) security and automation using Terraform, AWS CloudFormation, or similar tools.
  • Industry certifications such as CISSP, CCSP, AWS Certified Security, or GIAC are preferred.


What can you expect from us?
  • Award-winning culture that fosters growth, diversity and inclusion for all
  • Paid day off for your birthday
  • Access to LinkedIn learning courses
  • Bi-annual performance-based bonus
  • Continued education with our education reimbursement program
  • Flexible schedules
  • Free unlimited access to our refreshment stations (fully stocked with tea, coffee and other beverages)
  • Two paid days for volunteer opportunities
  • A free premium membership for ‘Headspace’; an app geared towards mental health and wellbeing
  • Access to Perkopolis retail discounts
  • Generous benefit coverage with low premiums (+ a Health Care Spending Account)
  • RRSP Matching


KUBRA is an equal opportunity employer dedicated to building an inclusive and diverse workforce. We will provide accommodations during the recruitment process upon request by emailing recruitment-team@kubra.com. Information received relating to accommodation will be addressed confidentially. We thank all applicants for their interest; however, only candidates under consideration will be contacted.


While we value the skills and experiences listed in our job requirements, we also recognize that talent comes in many forms, and welcome applications from candidates who meet most but not all specified requirements. If you possess a strong desire to learn and grow in a dynamic work environment, apply now!


KUBRA is a fast-growing company that delivers customer communications solutions to some of the largest utility, insurance, and government entities across North America. KUBRA offers billing and payments, mapping, mobile apps, proactive communications, and artificial intelligence solutions for customers. With more than 1.5 billion customer interactions annually, KUBRA services reach over 40% of households in the U.S. and Canada. KUBRA is an operating subsidiary of Hearst.

 

Our office is small enough to allow creative individuals to flourish, yet large enough to provide long-term stability. We place a tremendous amount of responsibility on our team members to be productive, focused and self-motivated. We offer a casual work environment, competitive compensation and a stellar benefits program. 


KUBRA does not typically provide immigration-related assistance, including employment-based work visa (e.g. H-1B) sponsorship, work permit applications and extensions, permanent residence (green card) sponsorship, LMIA applications or permanent residency nominations. Candidates must ensure they have legal authorization to work in the U.S/ Canada. All sponsorship determinations are case by case based on business need.

KUBRA Glassdoor Company Review
4.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
KUBRA DE&I Review
4.4 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of KUBRA
KUBRA CEO photo
Rick Watkin
Approve of CEO

Average salary estimate

$115000 / YEARLY (est.)
min
max
$100000K
$130000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Security Engineer, KUBRA

KUBRA is super excited to invite a skilled Senior Security Engineer to be part of our energetic team in Mississauga, ON! This role is pivotal in shaping the security landscape of our cloud and application environments. Your expertise will ensure that KUBRA's security standards shine through in everything we do. Imagine yourself designing secure architectures while collaborating with talented Product and Service Delivery teams to share best practices. Every day will present you with opportunities to conduct thorough security assessments, establish secure application development practices, and monitor emerging security trends. You will directly impact how we protect our data and infrastructure, all while enforcing compliance with key regulations like PCI-DSS and ISO 27001. This hybrid role won't just allow you to work from the comfort of your home, but also provide a chance to connect with a diverse team focused on innovation and trust in all things cloud. KUBRA isn't just another IT company— we're a vibrant organization that values your input and encourages continuous learning and growth! Grab this chance to be part of a community that backs your professional journey while enjoying an awesome benefits package and a culture that celebrates diversity and inclusion. Ready to take the next step in your career? We’d love to hear from you!

Frequently Asked Questions (FAQs) for Senior Security Engineer Role at KUBRA
What are the primary responsibilities of a Senior Security Engineer at KUBRA?

As a Senior Security Engineer at KUBRA, you will focus on designing, optimizing, and maintaining a secure cloud computing environment. Your responsibilities include developing cloud security architectures, conducting security assessments, and providing best practices to ensure application and cloud security standards are upheld consistently.

Join Rise to see the full answer
What qualifications are needed for the Senior Security Engineer position at KUBRA?

To be considered for the Senior Security Engineer role at KUBRA, candidates should hold a Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or a related field. Additionally, having 7+ years of relevant cybersecurity experience and expertise in cloud security frameworks, application security, and knowledge of related technologies is essential.

Join Rise to see the full answer
How does KUBRA support career growth for Senior Security Engineers?

KUBRA offers numerous growth opportunities for Senior Security Engineers, including access to LinkedIn learning courses, continued education reimbursement, and flexible schedules. The culture here promotes development and encourages team members to take on challenging projects while supporting each other's career aspirations.

Join Rise to see the full answer
What tools and technologies should a Senior Security Engineer at KUBRA be familiar with?

A Senior Security Engineer at KUBRA should be familiar with cloud security tools and frameworks, secure software development practices, identity and access management, and Infrastructure as Code (IaC) with tools like Terraform. Knowledge in networking security principles, scripting, and automation is also critical for success in this role.

Join Rise to see the full answer
What type of culture can a Senior Security Engineer expect at KUBRA?

At KUBRA, a Senior Security Engineer will experience a collaborative and inclusive culture that celebrates diversity. The company promotes continuous learning, provides a supportive work environment, and encourages team members to share ideas, making it a great place to innovate and grow.

Join Rise to see the full answer
Common Interview Questions for Senior Security Engineer
Can you explain your experience with cloud security frameworks?

In answering this question, highlight specific cloud security frameworks you have worked with, such as the AWS Well-Architected Framework or the CSA-CCM. Discuss how you have applied these frameworks in your previous roles, especially concerning data protection and compliance.

Join Rise to see the full answer
How do you approach threat modeling in application security?

When addressing this question, explain your methodology for identifying potential threats and vulnerabilities in applications. Share specific examples of threat models you have created, focusing on how you used these models to guide security practices during development.

Join Rise to see the full answer
What steps do you take to secure CI/CD pipelines?

Outline the security measures you implement to protect CI/CD pipelines, such as integrating security tests at various stages, using SAST/DAST tools, and employing automated security checks. Mention any experiences where these practices successfully mitigated risks.

Join Rise to see the full answer
How do you keep up with the latest security trends and vulnerabilities?

Illustrate your commitment to ongoing education by mentioning specific resources you follow, such as security blogs, newsletters, and webinars. Also, discuss any community engagements you participate in, such as conferences or groups focused on cybersecurity.

Join Rise to see the full answer
Can you describe your experience with incident response and forensics?

Share your experience in incident response teams, highlighting specific incidents you have managed. Discuss your role in conducting forensic analysis to determine the cause of security incidents and the steps taken to remediate those issues.

Join Rise to see the full answer
What are your preferred tools for implementing network security controls?

Discuss the network security tools you are most familiar with, such as firewalls, IDS/IPS systems, or DDoS mitigation solutions. Provide examples of how you have implemented these tools in past positions to enhance security.

Join Rise to see the full answer
How would you approach developing organizational data strategy?

Explain your process for aligning an organizational data strategy with business goals. Discuss how you integrate data management practices with security protocols to ensure compliance and protect sensitive information.

Join Rise to see the full answer
What are your strategies for secure application development?

Describe your approach to implementing secure coding standards, educating developers on OWASP Top 10 vulnerabilities, and using SAST/DAST tools. Provide specific examples of how you’ve improved the security of applications during their development phase.

Join Rise to see the full answer
How do you involve yourself in a DevSecOps environment?

Illustrate your understanding of DevSecOps principles and how you've collaborated with various teams to embed security practices into the software development lifecycle. Share experiences that document successful cross-functional engagements.

Join Rise to see the full answer
What measures do you implement for database security?

When answering this question, discuss specific measures you've implemented for database security, such as encryption, access controls, and regular security assessments. Mention any experience ensuring compliance with regulations concerning database management.

Join Rise to see the full answer

“Experience Better” is more than a tagline, it’s our mission.

35 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
March 20, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!